Deleted articles cannot be recovered. Draft of this article would be also deleted. Are you sure you want to delete this article?
ããã«ã¡ã¯ãæè¡é¨ã®åªäºã§ãã(ã¿ããªã®ã¦ã§ãã£ã³ã°)ã2017å¹´6æ13æ¥ã«å®å ¨HTTPSåãã¾ãããç§éãè¡ã£ãå®å ¨HTTPSåã®å¯¾å¿ããç´¹ä»ãã¾ãã 使 å®å ¨HTTPSåãè¡ãã®ã æ¨ä»ã¤ã³ã¿ã¼ãããã®æµãã¨ãã¦å®å ¨HTTPSåãé²ãã§ãã¦ãã¾ããWebãµã¤ãã®ä¿¡é ¼æ§ãé«ããæ»æè ããã®çè´ã»ãªããã¾ããé²ãã¦ã¼ã¶ã®å人æ å ±ãä¿è·ãããã¨ãé常ã«éè¦ã¨ãªã£ã¦ãã¦ãã¾ãã ã¾ããæ°ããªAPIãæè¡(HTTP/2ãªã©)ã«ããã¦ãHTTPéä¿¡åã§ã¯å©ç¨ãå¶éããããã®ãçããããã¾ããã ã¿ããªã®ã¦ã§ãã£ã³ã°ç¤¾ã§ã¯ãæ¢ã«PartyNoteãå§ãã¨ãããBrides UP!ãªã©ã2015年以éã«ãªãªã¼ã¹ããæ°è¦ãµã¼ãã¹ã¯ãªãªã¼ã¹å½åããHTTPSåã«å¯¾å¿ãã¦ãã¾ããããããªãããã¡ã¤ã³ãµã¼ãã¹ã§ãããã¿ããªã®ã¦ã§ãã£ã³ã°ã¯ã対å¿è¦æ¨¡ã大ããããHTTPSåã«è¸ã¿åãã¦ãã¾ããã§ããã ããã¾
SNIã¨ã¯å ã SSLéä¿¡ã¯1ã¤ã®IPã¢ãã¬ã¹ã«å¯¾ãã¦ã1ã¤ã®è¨¼ææ¸ãåæã«ãªã£ã¦ãã¾ãããã¨ããã®ãSSLã§ã¯æå·åããã¦ããããã1ã¤ã®IPã¢ãã¬ã¹ã«å¯¾ãã¦è¤æ°ã®è¨¼ææ¸ãæã£ã¦ããå ´åããªã¯ã¨ã¹ããæ¥ãã¨ãã«ã©ã®è¨¼ææ¸ã使ãã°ããã夿ã§ããªãããã§ãã ãããããã ã¨ã©ãèãã¦ãã¤ãããã¨ãåããã¾ããæ¨ä»ã®æµãã¨ãã¦å¸¸æSSLéä¿¡ãå½ããåã®ä¸çã«ãªãã¤ã¤ããã¾ãããã¹ã¦ã®ãã¡ã¤ã³ã«å¯¾ãã¦å ¨ã¦ã®IPã¢ãã¬ã¹ãç¨æããã®ã¯ç¹ã«IPv4ã§ã¯ç¾å®çã§ã¯ããã¾ããã ããããHTTPã§ã¯Virtual Hostã使ã£ã¦ã1ã¤ã®IPã¢ãã¬ã¹ã§è¤æ°ã®ãã¡ã¤ã³ã®ãµã¤ããæ±ããã¨ãã¨ã¦ãä¸è¬çã§ãã ããã§æç¨ãªã®ãSNIã§ããSNIã¯æåã®éä¿¡æã«ä»ããéä¿¡ããããµã¼ãã¼ãã¼ã ããµã¼ãã¼ã«å¹³æã§æ¸¡ããã¨ã§ãéä¿¡ãããSSLè¨¼ææ¸ãæå®ã§ãã¾ãã SNIã使ããã¨ã§HTTPã®Virtual Host
ã¤ã³ãã©ã¹ãã©ã¯ãã£ã¼é¨é·ã®æ (@kani_b) ã§ãã 2017å¹´1æ5æ¥ããã£ã¦ãã¯ãã¯ããã ã«ãããå ¨ãã¼ã¸ã§ HTTPS ã使ãããããã«ãªãã¾ããã å®å ¨ HTTPS åãããã«ãããããã®çç±ãå ·ä½çãªé²ãæ¹ã«ã¤ãã¦ç´¹ä»ãã¾ãã 以å SRE Tech Talks #2 ã«ã¦ä¸é¨çºè¡¨ããå 容ãå«ã¿ã¾ãã®ã§ããèå³ã®ããæ¹ã¯ãããã¦ã¹ã©ã¤ããã覧ãã ããã å®å ¨ HTTPS åã«è¸ã¿åã£ãçç± ä»¥åã®ã¯ãã¯ãããã¯ããã°ã¤ã³ãç»é²æ å ±ã®åç §ãªã©ãããããå人æ å ±ãèªè¨¼æ å ±ãæ±ãç®æã®ã¿ã« HTTPS ã使ããã¦ãã¾ããã ãã®ããã«ãå¿ è¦ãªç®æã«ã®ã¿ HTTPS ã使ããæ§æã¯ãããç¨åº¦æ´å²ã®ãã Web ãµã¼ãã¹ã«ããã¦ãã使ããã¦ããæ§æã§ãã ãã®ç¶æ ãããå®å ¨ HTTPS åã«è¸ã¿åã£ãçç±ã説æãã¾ãã ãµã¼ãã¹ãããã»ãã¥ã¢ã«ãããã HTTPS ã®å©ç¨ãèããã«
æè¿ããã¤ããã©ã¼ãã³ã¹ãã©ã¦ã¶ãããã¯ã¼ãã³ã°ãèªãã§ãã¦ãHTTPSã«ã¤ãã¦ã¡ãã£ã¨åå¼·ãã¦ãã¾ããåå¼·ã«ããã£ã¦ã¯ãå®éã«è©¦ããå ´æããã£ãã便å©ãããªã®ã§ãèªåã®ãããVPSã«HTTPSã®Webãµã¼ããè¨ç½®ãã¦ã¿ããã¨ã«ãã¾ããããã®æ¬¡ã¯HTTP2ã®å®é¨ããããã®ã§ãå é²çãªHTTP2ã®æ©è½ãå®è£ ããã¦ããããªh2oã使ã£ã¦ã¿ããã¨ã«ãã¾ããã ç°å¢ ä»åã®ä½æ¥ã¯ä»¥ä¸ã®ãããªç°å¢ã§ããã¾ããã $ uname -a Linux douzemille 4.4.0-36-generic #55-Ubuntu SMP Thu Aug 11 18:01:55 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux $ cat /etc/lsb-release DISTRIB_ID=Ubuntu DISTRIB_RELEASE=16.04 DISTRIB_CODENA
Deleted articles cannot be recovered. Draft of this article would be also deleted. Are you sure you want to delete this article? ä»å¹´ã¯Google I/Oã«åãã¦ç¤¾å¡ã§ã¯ãªãç«å ´ã§åå ãã¾ãããå ¨ä½ã®ææ³ã¯ Google I/O 2016ã¾ã¨ãï¼Webçè¦ç¹ï¼ ã§å ¬éãã¦ãã¾ãããä»åã¯ãã®ä¸ã§ãæ°ã«å ¥ã£ãã»ãã·ã§ã³ã®1ã¤ã§ãã"Mythbusting HTTPS: Squashing securityâs urban legends"ã«ã¤ãã¦æ¸ãã¦ã¿ããã¨æãã¾ãã ã»ãã·ã§ã³ã¯å¤§å¤è¯ãã¾ã¨ã¾ã£ã¦ãã¾ãã®ã§ãYouTubeã«ããã£ã¦ããåç»ãè¦ãã人ã¯åç»ãè¦ã¦è²°ããã°è¯ãã®ã§ãããæéãç¡ãã¨ãã人ã®ããã«ããã®å 容ãã¾ã¨ãã¾ãããåºæ¬çã«ã¯æåèµ·ããã«è¿ã
æè¿ãSREã話é¡ã§ããã tech.mercari.com www.wantedly.com ã¨ãããã¨ã§SREã«ã¤ãã¦èª¿ã¹ã¦ãããSREconãªãã¦ãã®ãéå¬ããã¦ããã®ã§ä¸ãè¦ã¦ããããBuilding a Billion User Load Balancerãã¨ããã¿ã¤ãã«ã§Facebookã®DNSãLBã¾ã§ã®è©±ããã£ãã®ã§ããã®ã¡ã¢ã§ãã Building a Billion User Load Balancer | USENIX tl;dr tinydns + IPVS ã§ Facebookè¦æ¨¡ã¯ããã httpsã®æ¥ç¶ç¢ºç«ã¯ããªãéã(RTTã®4å = RTT 150msã¨ããã¨GETã¾ã§600ms)ã®ã§ã太平æ´è¶ãã¨ãã¯å³ãã httpsãçµç«¯ãããCDNã¨ãã¯æ´»ç¨ã®å¯è½æ§ãããã (å½å ã ããèæ ®ãããªãå½±é¿ã¯è»½å¾®ãã) ã¡ã¢ L4 LB shiv (IPVS + pyt
Update 2015/5/8: ææé ããã¿ã¤ãã誤訳ãªã©ãæ´æ°ãã¾ããã 2015/5/8: æ§æãä¸é¨ä¿®æ£ãã¾ããã Intro 4/30 mozaiila ã®ã»ãã¥ãªãã£ããã°ã«ä¸è¨ã®ãããªã¨ã³ããªãæç¨¿ããã¾ããã Deprecating Non-Secure HTTP | Mozilla Security Blog ã¨ã³ããªã¯ããã¾ã§é·ããªãã®ã§ãããã«ç¿»è¨³ã®å ¨æãè¨è¼ãã¾ãã ããã¦ãå ã¨ã³ããªã®ã©ã¤ã»ã³ã¹ã§ãã CC BY-SA 3.0 ã«åãã æ¬ã¨ã³ããªãåãã CC BY-SA 3.0 ã¨ãã¾ãã Deprecating Non-Secure HTTP åæ: Deprecating Non-Secure HTTP 仿¥ã¯ã non-secure 㪠HTTP ãããå¾ã ã«å»æ¢ãã¦ããã¨ããæ¹éã«ã¤ãã¦ã¢ãã¦ã³ã¹ãã¾ãã HTTPS ã Web ãåé²ãããææ®µã§ãã
Web ãµã¤ãã常æ SSL åããå ´åã«ãæä½éç¥ã£ã¦ãããªããã°ãªããªãç¥èããæ³¨æç¹ãå®éã®è¨å®æ¹æ³ã¾ã§ãã²ã¨éãã¾ã¨ãã¦ã¿ã¾ãããã¡ãªããããã¡ãªãããè¨¼ææ¸ã®ç¨®å¥ãããªãã¤ã¬ã¯ãè¨å®ãªã©ã«ã¤ãã¦ã解説ãã¦ãã¾ãã HTTPS ãã©ã³ãã³ã°ã·ã°ãã«ã«ä½¿ç¨ãã¾ã㨠Google ãå ¬å¼ã«çºè¡¨ããããããããWeb ãµã¤ãã® SSL 対å¿ãç¹ã« Google ãæ¨å¥¨ãã¦ãã Web ãµã¤ãããã¹ã¦ HTTPS ã§é ä¿¡ãããæè¬ ã常æ SSL åã ã«ã¤ãã¦ã®è©±ãèããããå®éã«ã客æ§ããç¸è«ããããããã±ã¼ã¹ãå¢ãã¦ãã¾ããã ããã§ãããæ©ä¼ã ããã®è¾ºã«é¢ããæ å ±ãã¾ã¨ãã¦ãããããªï½ ã¨æã£ã¦æ¸ãã¦ã¿ããæä¾ã® ï¼ï¼ï¼ 5åã§ãããã·ãªã¼ãºãæ¸ãçµãã£ã¦è¦ãã¨ãã絶対㫠5åããç¡çã£ã¦ããæç« éã«ãªã£ã¦ã¦ã©ããããããªãã¨ãæã£ããã§ãããæ°ã«ããå ¬éãã¦ã¿ã¾ãã 常æ SSL
ã©ã³ãã³ã°
ãç¥ãã
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}